CVE 8.4 HIGH

Path traversal vulnerability in WinRAR_CVE-2025-8088

8.4 / 10
HIGH
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

Description

A path traversal vulnerability affecting the Windows version of WinRAR allows the attackers to execute arbitrary code by crafting malicious archive files. This vulnerability was exploited in the wild and was discovered by Anton Cherepanov, Peter Košinár, and Peter Strýček
from ESET.

Basic Information

ID CVE-2025-8088
Source ESET
Published Aug 8, 2025 at 11:11

Affected Product

Vendor win.rar GmbH
Product WinRAR
Affected Versions win.rar GmbH WinRAR 0

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.